Anonymous | Login | 2024-12-22 00:18 MST |
Main | My View | View Issues | Change Log | Roadmap | Repositories |
View Issue Details [ Jump to Notes ] | [ Issue History ] [ Print ] | ||||||||||||
ID | Project | Category | View Status | Date Submitted | Last Update | ||||||||
0002030 | ClearCenter | app-security-audit - Security Audit | public | 2014-11-11 09:28 | 2014-11-11 09:36 | ||||||||
Reporter | marclaporte | ||||||||||||
Assigned To | |||||||||||||
Priority | low | Severity | feature | Reproducibility | N/A | ||||||||
Status | confirmed | Resolution | open | ||||||||||
Platform | OS | OS Version | |||||||||||
Product Version | |||||||||||||
Target Version | Fixed in Version | ||||||||||||
Summary | 0002030: Security audit report should also indicate the software updates for the same time period | ||||||||||||
Description | We get something like this: AIDE found differences between database and filesystem!! Summary: Total number of files: 18491 Added files: 0 Removed files: 0 Changed files: 24 But how to know if those 24 changed files are legit? It would be useful to have (in the same message) the info from https://example.org:81/app/software_updates [^] So when I see: changed: /usr/lib64/openssl/engines/libcapi.so changed: /usr/lib64/openssl/engines/libchil.so Along with this: Nov 11 03:42:25 Updated openssl-1.0.1e-16.el6_5.15.x86_64 I can be confident that it's legit. Thanks! | ||||||||||||
Tags | No tags attached. | ||||||||||||
Attached Files | |||||||||||||
Issue History | |||
Date Modified | Username | Field | Change |
2014-11-11 09:28 | marclaporte | New Issue | |
2014-11-11 09:36 | user2 | Status | new => confirmed |